Say a VOB (VOB tag: VOB1) only allows a group of developers (group id: GRPa) to have read-write access. All other users do not have any access.
1. Make sure that GRPa is either listed as ownership group or additional group. This privilege defines who can modify the code.
> cleartool desc -l vob:VOB1
To add GRPa to the addiontinal group, run command
> clearcase protectvob -add_group GRPa
2. Make sure that the VOB root directory has 770 and owned by GRPa group. This privilege defines who can see the code under VOB root.
> cleartool desc -l VOB1
User : ccadmin : rwx
Group: GRPa : rwx
Other: : ---
to change the protection of the VOB root directory, run command
> cleartool protect -chmod 770 VOB1
If another group (group id: GRPb) needs only read access to VOB1, then a third group (id GRPc) needs to be created to include both GRPa and GRPb. The group GRPc need to be the group of VOB root element. To change it, run command
> cleartool protect -chgrp GRPc VOB1